Step-by-Step Malware Removal Instructions

TeachPad Adware (Mac)
Mac Virus

TeachPad Adware (Mac)

TeachPad is a rogue app that our researchers discovered while investigating new submissions to VirusTotal. After analyzing this piece of software, we learned that TeachPad operates as adware and belongs to the AdLoad malware family. Advertising-supported software (adware) is designed to

Ukentaspe.xyz Ads
Notification Spam

Ukentaspe.xyz Ads

Ukentaspe[.]xyz is one of the deceptive websites that display fake/deceptive messages to trick visitors into allowing them to show notifications. Also, this site can redirect to other shady websites. We discovered ukentaspe[.]xyz while checking out pages that use rogue advertising networks.

BITCOINPAYMENT Ransomware
Ransomware

BITCOINPAYMENT Ransomware

While inspecting new submissions to VirusTotal, our researchers found yet another malicious program belonging to the Phobos ransomware family. We acquired a sample of this ransomware-type program called BITCOINPAYMENT and executed it on our test machine. This ransomware encrypted files and append

Style-buzz-blog.com Ads
Notification Spam

Style-buzz-blog.com Ads

Style-buzz-blog[.]com is an untrustworthy page that shows deceptive messages to trick visitors into allowing it to show notifications. Also, style-buzz-blog[.]com redirects visitors to other pages of this kind. We discovered this site while examining pages that use rogue advertising networks (it i

Ccyu Ransomware
Ransomware

Ccyu Ransomware

Ccyu is ransomware belonging to the Djvu family. We discovered it while inspecting malware samples submitted to the VirusTotal site. Ccyu encrypts and renames files (by appending the ".ccyu" extension to filenames). It also drops a ransom note, a text file named "_readme.txt". An example of how C

Ccew Ransomware
Ransomware

Ccew Ransomware

We discovered a new Djvu ransomware called Ccew while examining malware samples submitted to the VirusTotal page. We learned that Ccew encrypts files, appends the ".ccew" extension to filenames, and drops the "_readme.txt" file (a ransom note) on the desktop. An example of how Ccew renames files:

Listen-heres.com Ads
Notification Spam

Listen-heres.com Ads

Our research team discovered the listen-heres[.]com rogue webpage while investigating suspicious sites. This page pushes browser notification spam and causes redirects to other (likely unreliable/malicious) websites. Users typically access such webpages via redirects caused by sites using rogue ad

Private-mastermind.com Ads
Notification Spam

Private-mastermind.com Ads

Private-mastermind[.]com is a rogue page that endorses scams, pushes spam browser notifications, and redirects users to different (likely untrustworthy/malicious) websites. Users typically enter these webpages via redirects caused by sites using rogue advertising networks. It is pertinent

Cleantraf.xyz Ads
Notification Spam

Cleantraf.xyz Ads

Our research team discovered the cleantraf[.]xyz rogue page while inspecting questionable websites. It promotes scams, pushes browser notification spam, and redirects visitors to other (likely untrustworthy/malicious) sites. Most users enter these webpages via redirects caused by websites that use

Smartsearchresults.com Redirect
Browser Hijacker

Smartsearchresults.com Redirect

While researching rogue software, we found the smartsearchresults.com fake search engine. It can generate search results that are inaccurate and contain dubious/malicious advertisements. Websites of this kind are promoted by browser-hijacking software, which changes browser settings to cause redi